- Mastering OpenStack(Second Edition)
- Omar Khedher Chandan Dutta Chowdhury
- 206字
- 2021-07-02 23:52:37
Keystone - identity management
From an architectural perspective, Keystone presents the simplest service in the OpenStack composition. It is the core component and provides an identity service comprising authentication and authorization of tenants in OpenStack. Communications between different OpenStack services are authorized by Keystone to ensure that the right user or service is able to utilize the requested OpenStack service. Keystone integrates with numerous authentication mechanisms such as username/password and token/authentication-based systems. Additionally, it is possible to integrate it with an existing backend such as the Lightweight Directory Access Protocol (LDAP) and the Pluggable Authentication Module (PAM).
Keystone also provides a service catalog as a registry of all the OpenStack services.
With the evolution of Keystone, many features have been implemented within recent OpenStack releases leveraging a centralized and federated identity solution. This will allow users to use their credentials in an existing, centralized, sign-on backend and decouples the authentication mechanism from Keystone.
The federation identity solution becomes more stable within the OpenStack Juno release, which engages Keystone as a Service Provider (SP), and uses and consumes from a trusted Provider of Identity (IdP), user identity information in SAML assertions, or OpenID Connect claims. An IdP can be backed by LDAP, Active Directory, or SQL.
- 后稀缺:自動(dòng)化與未來工作
- Ansible Configuration Management
- Circos Data Visualization How-to
- Dreamweaver CS3網(wǎng)頁制作融會(huì)貫通
- Learning Apache Cassandra(Second Edition)
- Docker High Performance(Second Edition)
- 大學(xué)C/C++語言程序設(shè)計(jì)基礎(chǔ)
- 運(yùn)動(dòng)控制系統(tǒng)
- Deep Reinforcement Learning Hands-On
- Godot Engine Game Development Projects
- 工業(yè)自動(dòng)化技術(shù)實(shí)訓(xùn)指導(dǎo)
- 啊哈C!思考快你一步
- 數(shù)據(jù)庫基礎(chǔ):Access
- Keras Reinforcement Learning Projects
- 網(wǎng)絡(luò)設(shè)備規(guī)劃、配置與管理大全(Cisco版)